When developing a formal enterprise security program, t…
When developing a formal enterprise security program, the MOST critical success factor (CSF) would be the:
When reviewing the IT strategic planning process, an IS…
When reviewing the IT strategic planning process, an IS auditor should ensure that the plan:
To aid management in achieving IT and business alignmen…
To aid management in achieving IT and business alignment, an IS auditor should recommend the use of:
which level of ranking in the information security gove…
In an organization, the responsibilities for IT security are clearly assigned and enforced and an IT security risk
and impact analysis is consistently performed. This represents which level of ranking in the information security
governance maturity model?
When reviewing IS strategies, an IS auditor can BEST as…
When reviewing IS strategies, an IS auditor can BEST assess whether IS strategy supports the organizations’
business objectives by determining if IS:
An IS auditor reviewing an organization’s IT strategic …
An IS auditor reviewing an organization’s IT strategic plan should FIRST review:
Which of the following would an IS auditor consider to …
Which of the following would an IS auditor consider to be the MOST important when evaluating an
organization’s IS strategy? That it:
Which of the following goals would you expect to find i…
Which of the following goals would you expect to find in an organization’s strategic plan?
Which of the following would an IS auditor consider the…
Which of the following would an IS auditor consider the MOST relevant to short-term planning for an IS
department?
In reviewing the IS short-range (tactical) plan, an IS …
In reviewing the IS short-range (tactical) plan, an IS auditor should determine whether: